Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 09-18-2010, 06:56 AM   #1
nikad
Confirmed User
 
nikad's Avatar
 
Join Date: Jan 2004
Location: BA
Posts: 2,579
:stop If you run OpenX watch out for this - CRITICAL SECURITY -

http://blog.sucuri.net/2010/09/openx...o-upgrade.html

http://blog.openx.org/09/security-up...8OpenX+Blog%29

Many sites are being reported as malicious by Google, causing traffic loss, etc. Hope you find this useful.

nik
__________________

The Filthy Few

[email protected]
nikad is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 07:15 AM   #2
Rick Diculous
Confirmed User
 
Rick Diculous's Avatar
 
Join Date: Jul 2008
Posts: 2,370
Yeah, I got 5 of my sites blocked by google this week because I was using openx. they say I distributed badware though openx
__________________
100+ adult blogs looking for hardlink trades
ICQ: 383 631 174
jason @ pornblogempire . com
Rick Diculous is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 07:29 AM   #3
Klen
 
Klen's Avatar
 
Industry Role:
Join Date: Aug 2006
Location: Little Vienna
Posts: 32,235
This is why i use commercial scripts rather.
Klen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 07:43 AM   #4
strobi
Confirmed User
 
Join Date: Nov 2002
Location: Belgium
Posts: 7,383
Holy shit! checking that out (upgrading)!
strobi is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 08:02 AM   #5
TheMaster
Confirmed User
 
Join Date: Nov 2003
Location: Prague
Posts: 2,732
is this happening to sites running that particular update or for all older OpenX versions?
__________________
TheMaster is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 08:04 AM   #6
MaDalton
I am Amazing Content!
 
MaDalton's Avatar
 
Industry Role:
Join Date: Feb 2004
Posts: 39,828
thanks for the info
MaDalton is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 08:52 AM   #7
DWB
Registered User
 
Industry Role:
Join Date: Jul 2003
Location: Encrypted. Access denied.
Posts: 31,779
Quote:
Originally Posted by KlenTelaris View Post
This is why i use commercial scripts rather.
Such as?
DWB is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 09:20 AM   #8
Dating Port
Useless As Ever
 
Dating Port's Avatar
 
Industry Role:
Join Date: Jan 2009
Location: Planet Earth
Posts: 731
I deleted my OpenX about a year ago.

Thanks for helping that guy out Nikad. I coiuld only see what it was. Not where.
__________________
Email: admin[at]datingport.co.uk - ICQ: 456416181
It's amazing what you (L)earn when you put some effort into it!

Last edited by Dating Port; 09-18-2010 at 09:21 AM..
Dating Port is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 09:21 AM   #9
GTS Mark
Vrume Mark
 
GTS Mark's Avatar
 
Industry Role:
Join Date: Jan 2001
Location: Toronto, Canada
Posts: 20,912
Thanks for the update
GTS Mark is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 09:29 AM   #10
LeRoy
Porn Pusher
 
LeRoy's Avatar
 
Industry Role:
Join Date: Jul 2007
Location: It's a dry heat
Posts: 13,337
Better check your sites. This one hurts like a mother fucker!
__________________
JAPANESE CAMS AND CONTENT SITES
Skype - leroy.rowland2
LeRoy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 09:35 AM   #11
Klen
 
Klen's Avatar
 
Industry Role:
Join Date: Aug 2006
Location: Little Vienna
Posts: 32,235
Quote:
Originally Posted by DirtyWhiteBoy View Post
Such as?
Such this shit:
http://smart-scripts.com/?action=smartspots
Klen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 09:42 AM   #12
nikad
Confirmed User
 
nikad's Avatar
 
Join Date: Jan 2004
Location: BA
Posts: 2,579
Glad it was of help! ( as if awms hadn´t been hit hard lately now this :P )
__________________

The Filthy Few

[email protected]
nikad is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 10:22 AM   #13
cykoe6
Confirmed User
 
cykoe6's Avatar
 
Industry Role:
Join Date: Apr 2005
Location: Vegas
Posts: 4,499
Yea this happened to me and it really crushed me. I got my sites which got hit reconsidered by Google and the malware warning taken off but now my whole network is sandboxed. Really painful and costly shit.
__________________
бабки, шлюхи, сила
cykoe6 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 12:00 PM   #14
Vick!
Confirmed User
 
Industry Role:
Join Date: Nov 2005
Location: 20 00'24.00" N, 75 09'00.00 W
Posts: 6,882
Quote:
Originally Posted by KlenTelaris View Post
This is why i use commercial scripts rather.
Like commercial ones are immune to security loopholes and vulnerabilities.

__________________
Affordable Quality Web Hosting
Vick! is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 01:04 PM   #15
roly
Confirmed User
 
Join Date: Aug 2002
Posts: 1,844
Quote:
Originally Posted by Vick! View Post
Like commercial ones are immune to security loopholes and vulnerabilities.

yeah a lot of open source stuff has 100's of geeks going over the code rather than a few employed coders of commercial scripts.

Last edited by roly; 09-18-2010 at 01:06 PM..
roly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 01:11 PM   #16
Hawkins
Confirmed User
 
Join Date: Oct 2007
Posts: 149
OpenX sucks
Hawkins is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 04:30 PM   #17
tiger
Confirmed User
 
tiger's Avatar
 
Industry Role:
Join Date: Apr 2002
Location: Los Angeles
Posts: 6,986
Those fuckers got me, but luckily on only one installation.
__________________

tiger is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 04:42 PM   #18
CyberHustler
Masterbaiter
 
Industry Role:
Join Date: Feb 2006
Posts: 26,037
I dropped openx right on time... sucks for some of you guys though.
CyberHustler is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 04:47 PM   #19
signupdamnit
Confirmed User
 
signupdamnit's Avatar
 
Industry Role:
Join Date: Aug 2007
Posts: 6,697
There's an update to fix it...
signupdamnit is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-18-2010, 08:18 PM   #20
HomerSimpson
Too lazy to set a custom title
 
HomerSimpson's Avatar
 
Industry Role:
Join Date: Sep 2005
Location: Springfield
Posts: 13,826
openx rocks and this will be solved...

Quote:
Originally Posted by KlenTelaris View Post
I have it and I have following problems
- geoip targeting not working for my country
- php includes code not counting hits/clicks
- memcache not working (bad help on this one too)
- banners load slowly the rest of the page, lacking iframe codes...
__________________
Make a bank with Chaturbate - the best selling webcam program
Ads that can't be block with AdBlockers !!! /// Best paying popup program (Bitcoin payouts) !!!

PHP, MySql, Smarty, CodeIgniter, Laravel, WordPress, NATS... fixing stuff, server migrations & optimizations... My ICQ: 27429884 | Email:
HomerSimpson is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-19-2010, 02:13 AM   #21
hdkiller
Full time cybermage
 
hdkiller's Avatar
 
Industry Role:
Join Date: Jun 2006
Location: Cyberspace
Posts: 461
a few days ago (2) just got an update

do your update
__________________
ClickPapa! - Buy and Sell traffic
hdkiller is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-19-2010, 03:22 AM   #22
Davy
Confirmed User
 
Davy's Avatar
 
Industry Role:
Join Date: Apr 2006
Location: Germany
Posts: 4,323
That must have been quite a big security hole if it allowed attackers to inject code into the ad fields.

I never liked openX. They include the Pear library in their download which makes the whole thing huge. Many servers already have pear installed. They should just make it a server requirement instead of including it in the download.
__________________
---
ICQ 14-76-98 <-- I don't use this at all
Davy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-19-2010, 06:23 AM   #23
nikad
Confirmed User
 
nikad's Avatar
 
Join Date: Jan 2004
Location: BA
Posts: 2,579
The latest update does not completely solve the problem, you must allow only your server ip address to access any files of this script, otherwise they will get in again. I always loved this script, but the security hole has been there for almost a year...that doesn´t make me happy. I will give it a last chance though, but it gets boring :P
__________________

The Filthy Few

[email protected]
nikad is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 09-19-2010, 08:38 AM   #24
stonehammer
Confirmed User
 
Join Date: Feb 2008
Posts: 1,430
looks like its time to use simple php scripts like those free random banner scripts
stonehammer is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.